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Abstract 

It is shown that maximally efficient protocols for secure direct quantum communications can be constructed using any 
arbitrary orthogonal basis. This establishes that no set of quantum states (e.g. GHZ states, W states. Brown states or Cluster 
states) has an advantage over the others, barring the relative difficulty in physical implementation. The work provides a wide 
choice of states for experimental realization of direct secure quantum communication protocols. We have also shown that this 
protocol can be generalized to a completely orthogonal state based protocol of Goldenberg-Vaidman (GV) type. The security of 
these protocols essentially arises from duality and monogamy of entanglement. This stands in contrast to protocols that employ 
non-orthogonal states, like Bennett-Brassard 1984 (BB84), where the security essentially comes from non-commutativity in 
the observable algebra. 
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Introduction 



^^ince the proposal for the first protocol for quantum key distribution [T| , and the other early QKD protocols [TJ [2l [3l |4] , it came 
;^o be understood that quantum states can be employed for other cryptographic tasks, for example, for quantum secret sharing 
• J^QSS) of classical secrets [S]. A protocol for deterministic secure quantum communication (DSQC) using entangled photon pairs, 
S^as proposed by Shimizu and Imoto [5]. Although it was found to be insecure, it suggested that the prior generation of key 
Mi^e. QKD) can be circumvented and protocols for unconditionally secure direct quantum communication of the message can 
■ - Be designed. Subsequently, many such protocols were proposed, which can broadly be divided into two classes: (a) those for 
quantum secure direct communication (QSDC) [7115111] and (b) those for DSQC [TOllIIlIIllIllIlITillllin]. 

In DSQC receiver (Bob) can read out the secret message only after receipt of a pre-key: additional classical information of at 
least one bit for each qubit transmitted by the sender (Alice). By contrast, when no pre-key is required, a secure communication 
protocol is referred to as QSDC protocol [15]. A conventional QKD protocol generates the unconditionally secure key by quantum 
means but then uses classical cryptographic resources to encode the message. No such classical means are required in DSQC and 
QSDC. This interesting feature of DSQC and QSDC protocols has motivated several groups to study different aspects of DSQC 
and QSDC protocols in detail [[15] and reference therein]. 

QKD can be obtained from DSQC and QSDC protocols in the sense that given local resources like a random number generator, 
Alice can always implement QKD if she can implement DSQC or QSDC. Consequently, if we can establish that DSQC and/or 
QSDC protocol can be realized by using an arbitrary set of linearly independent quantum states, that would imply that QKD 
can also be realized using an arbitrary set of linearly independent quantum states. This is a motivation to study this type of 
protocols in the present paper. 

The unconditional security of the existing protocols is claimed to be obtained by using different quantum resources. For 
example, unconditionally secure protocols are proposed a) with and without maximally entangled state [ |11| and references 
therein], b) using teleportation |12| c) using entanglement swapping |13) d) using rearrangement of order of particles [151 119j etc. 
Although based on very different resources, the security of all the existing protocols of secure direct quantum communication 
arises ultimately from the use of conjugate coding (i.e. from quantum non-commutativity). This is so because all the existing 
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protocols of DSQC and QSDC detects Eve by measuring verification qubits in 2 or more mutually unbiased bases (MUBs). We 
thus classify all these protocols as essentially of BB84 type. 

Now one may ask: Is conjugate coding essential for DSQC and QSDC? The answer is "no", as we have recently shown the same 
in a different context [201. Here we will first propose DSQC and QSDC protocols of BB84 type (i.e. one which uses conjugate 
coding) using arbitrary quantum states and will subsequently turn them to Goldenberg-Vaidman (GV) type [4] protocols, which 
uses only orthogonal states for encoding, decoding and error checking, as was done in the original GV protocol of QKD. So 
far the GV protocol has existed as an isolated orthogonal-state-based protocol of QKD. Our Bell-state-based generalization of 
original GV protocol may also be regarded as DSQC or QSDC, thus providing, in our opinion, the first instance of GV-type 
DSQC and QSDC protocols [20]. The idea is further extended here and it is shown that GV type protocols of DSQC and QSDC 
can be implemented using an arbitrary set of linearly independent quantum states. 

In the protocols of DSQC and QSDC to be proposed in this paper, the rearrangement of orders of particles, plays a very 
crucial role. Therefore, it would be apt to note that the DSQC protocol based on the rearrangement of orders of particles was 
first proposed by Zhu et al. |15| in 2006. However, it turns to be insecure under a Trojan-horse attack, which can be corrected 
using the idea of rearrangement of particle order, as noted by Li et al. The Li et al. protocol may thus be considered as 

the first unconditionally secure protocol of DSQC based on permutation of particles (PoP) . 

In the last five years, many such PoP-based protocols of DSQC have been proposed. Very recently, Banerjee and Pathak |21| . 
Shukla, Banerjee and Pathak [55|, Yuan et al. [T7] and Tsai et al. [TH] have proposed PoP-based protocols for both DSQC and 
QSDC. The Yuan et al. protocol and Shukla-Banerjee-Pathak protocol use 4-qubit symmetric W state for communication, while 
the Banerjee-Pathak protocol uses 3-qubit GHZ-\ike states, and the Tsai et al. protocol utilizes the dense coding of four-qubit 
cluster states. 

Here we would also like to mention that in 2009 Xiu et al. [23] had provided a protocol of DSQC using the 5-qubit Brown 
state. Almost at the same time a DSQC protocol using the 5-qubit Brown state was also proposed by Jain, Muralidharan 
and Panigrahi [M]. Thus we observe that secure direct quantum communication, which was initially proposed using 2-qubit 
Bell states [71 [8] has subsequently been proposed with much more complex entangled states like 3-qubit GHZ-like state [21] , 
4-qubit W state [T7|, [22] , 4-qubit cluster state [19] , and the 5-qubit Brown state |231 [24] . The widespread use of these maximally 
entangled states in DSQC, QSDC and QKD have by now established a common perception that these states are special and are 
important for the implementation of quantum cryptographic protocol. 

Contrary to this common belief we will establish that DSQC and QSDC is possible with any arbitrary quantum state. Further, 
earlier proposed protocols are compared with each other and on the basis of qubit efficiency one is claimed to be better over 
the others. Here we aim to show that no quantum state is special and one can construct maximally efficient DSQC and QSDC 
protocol starting from any arbitrary set of linearly independent state vectors. 

The remaining part of the present paper is organized as follows, in Section [2] we propose BB84-type protocols for DSQC and 
QSDC using arbitrary quantum state. In SectionjJl we modify these protocols to corresponding orthogonal-state-based protocols 
of GV type. In Section U we analyze the security and efficiency of the proposed protocol and Section [5] is dedicated for the 
conclusions. 



2 The protocols of DSQC and QSDC 

Our aim is to show that efficient DSQC and QSDC protocols can be constructed using an arbitrary set of linearly independent 
quantum states. However, the information encoded states sent by Alice must be mutually orthogonal in order to enable Bob to 
unambiguously distinguish the encoded information. Let us assume that Alice starts with a set of Al = 2" arbitrary, linearly 
independent n-qubit state vectors |a;i), |x2), ja^s), • • • , |a:^A/)- 

If they are not pairwise orthogonal, Alice can apply Gram-Schmidt procedure on the above set of state vectors and obtain a set 
of mutually orthonormal state vectors as {|ai), |a2), {0.3), • ■ • , |aA/)}- This forms our arbitrary basis set. Let Hj (J = 1, 2, • ■ • , Ml) 
be an arbitrary permutation on M letters, and let {\bj) = \an{j))} represent the new basis obtained simply by permuting the 
states in the first basis. Effectively, we are relabeling the states | Oj ) . Now we may introduce the operators Uj = J2j I ) I ■ which 

are unitary, as is easily verified to satisfy UjUj = UjUj = {j2p l'^p)(^pl) \^q){'^q\j = {^j = principle, 

if {\bj)} is any basis set in M dimension then Uj will be unitary. However, for our purpose of showing that DSQC/QSDC is 
possible with an arbitrary set of mutually orthonormal state vectors {la^)} it is sufficient to consider {\bj) = |an(j))}- Further, 
this choice of output basis set is consistent with the spirit of the original GV protocol, where only single basis set is used (MUBs 
are not used) for encoding and decoding. 

Thus Uj are physically acceptable operators that can transform one state vector of our arbitrary basis set {|aj)} into a state 
of the same basis set as basis set {\bj) = |an(j))}- This is physically expected as these operators are nothing but rotation in the 
state space spanned by the basis set {|aj)}. Now we may define an orthogonal family of M unitaries {Uj} C {Uj} as one that 
satisfies {ai\UjUk\ai) = 0, where joi) S {|aj)} would be used later as the initial state. Given a particular permutation of vectors 
\bj) = |an(j)), we construct our family of unitary operators {Uj} as any set of M operators that yield \bj) = Uj\ai) and satisfy 
(a,|C/|C/fc|a,) =0. 

There are various alternative ways to construct {Uj} . For example, one particularly symmetric (in fact Hermitian) set {Uj} 
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for the case {\bj) 



'J/ = 



ttj)} is provided below as a specific example 



= I, 



M 



\ak){ak\- 



(1) 



Such operator families are used by Alice for encoding classical information. 

It is worth observing here that what was noted above and the protocols below do not depend on whether the basis states \aj) 
are single-particle or multi-particle states. The only requirement is that it is possible to split every state \aj) into n geometrically 
separable pieces that carry no information of the full state. If they are single-particle states, then \aj) is an equal- weight 
superposition that lives in an n (or greater) dimensional space, and constructed for n spatially separated wave-packets. 

Alice publicly announces the set of linearly independent states {|aj)} to be used by her, the initial state \ai) she is going to 
prepare and the set of unitary operators {f/j} to be used by her for encoding. For the practical implementation purpose, our 
assumption is that Alice has devices to prepare states in the basis {Iflj)}, to implement the set of unitary operators {?/_,}, and 
that Bob has devices to make measurements in {\bj)} basis. The main part of the protocol of DSQC works as follows. 

The DSQC protocol 

DSQCl: Alice prepares |ai)®^, which is an Nn qubit state (as \ai) is n qubit state). Qubits of |ai)®^ are indexed as 
Pi,P2, - ■ ■ ,PNn- Thus Ps is the s^^ qubit of la^)®^ and {Pni-n+i,Pni-n+2, ■ ■ ■ ^Pni ■ I < N} are the n qubits of the 



DSQC2: Alice encodes her n-bit classical secret message by applying one of the n-qubit unitaries {Uj} = {Ui, U2, • • • , Um} ■ 
The encoding scheme, which is predefined and known to Bob, is such that Ui, U2, U3, ■ ■ ■ ,Um are used to encode 
O1O2 • • • 0„, O1O2 • • • Ira, O1O2 • • ■ l„_iO„, • • • , I1I2 • • • In respectively. Thus the coded states Uj\ai) = \bj) are mutually or- 
thogonal. 

DSQC3: Using all the qubits of her possession, Alice creates an ordered sequence Pb = [pi,P2,P3,Pi, ■ ■ ■ tPNu-ItPNu]- She 
prepares Nn decoy qubit^ di with i = 1, 2, • • • , n such that di S {|0), |+), |— )} and concatenates them with Pb to yield 
a larger sequence Pb> = [pi,P2,P3,P4, ■■■,PNn-i,PNmdi,d2,d3,d4, ...,dffn-i,dNn]- Thereafter Alice applies a permutation 
operator Il2Nn on Pg' to create a random sequence Pb" = ^2NnPB' and sends that to Bob. The actual order is known to 
Alice only. 

DSQC4: After receiving Bob's authenticated acknowledgment of receipt of all the qubits, Alice announces Unu £ ^2Nn, the 
coordinates of the decoy qubits. The BB84 subroutine to detect eavesdropping, is then implemented on the decoy qubits 
by measuring them in the non-orthogonal bases {|0), or {|-|-), |— )}. If sufficiently few errors are found, then they go to 
the next step; else, they return to DSQCl. 

All intercept resend attacks will be detected in this step and even if eavesdropping has happened Eve will not obtain any 
meaningful information about the encoding operation executed by Alice as the encoded sequence is rearranged. 

DSQC5: Alice discloses the coordinates of the remaining qubits. 

DSQC6: Bob measures his qubits in = {l'^n(j))} basis and deterministically decodes the information encoded by Alice. 



The above protocol is clearly a protocol of DSQC as Alice needs to announce the actual order of the sequence. Rearrangement 
of particle ordering present in the DSQC protocol may be avoided by sending the information encoded states in n steps and by 
checking eavesdropping after each step. To be precise, consider that Alice sends a sequence of all the first qubits first with N 
decoy photons. If sufficiently few errors are found, only then does she send the sequence of all the second qubits, and so on. 
In such a situation the DSQC protocol presented above will be reduced to a QSDC protocol as no classical information will be 
required for decoding. Thus the previous protocol can be easily generalized to a QSDC protocol. To do so we need to modify 
DSQC3-DQSC5 in the above protocol. Therefore, the modified protocol may be described as follows: 

QSDCl: Same as DSQCl. 

QSDC2: SameasDSQC2. 

QSDC3: Alice prepares n sequences; Pbs ~ [PstPs+u-, ■ ■ ■ ■,Ps+{N-i)n '■ 1 < s < n]. She also prepares Nn decoy qubits as in 
DSQC3 and inserts N of the decoy qubits randomly into each of the n sequences prepared by her. This creates n extended 
sequences {Pbi+n, Pb2+n, ■ ■ ■ , Pbu+n) each of which contains 2N qubits. Then she sends the first sequence Pbi+n to 

^When 2x qubits (a random mix of message qubits and decoy qubits) travel through a channel accessible to Eve and x of them are tested for 
eavesdropping then for any 5 > 0, the probability of obtaining less than &n errors on the check qubits (decoy qubits), and more than (5 + e)n errors on 
the remaining x qubits is asymptotically less than cxp[— 0{e^a:)] for large x. 1251 . As the unconditional security obtained in quantum cryptographic 
protocol relies on the fact that any attempt of Eavesdropping can be identified. Thus to obtain an unconditional security we always need to check half 
of the travel qubits for eavesdropping. This is why Nn decoy qubits are prepared. Decoy qubits can be prepared in any two MUBs. 
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2.1 Turning the DSQC protocol to a QSDC protocol 



Bob. Receiving Bob's authenticated acknowledgment of receipt of 2N qubits, she announces the positions of the decoy 
qubits in Pbi+n- BB84 subroutine is then implemented on the decoy qubits to check eavesdropping and if sufficiently few 
errors are found then Alice sends Pb2+n to Bob and they check for eavesdropping and the process continues till the error 
free (i..e within the tolerance limit) transmission of Pbu+n- If at any stage of this step errors more than the tolerable rate 
is detected then they truncate the protocol and return to QSDCl else they go to the next step. 

QDDC4: Same as DSQC6. 

Since Eve cannot obtain more than 1 qubit of a n-partite state (as we are sending the qubits one by one and checking for 
eavesdropping after each step) she has no information about the encoded state and consequently this direct quantum communi- 
cation protocol is secure. Thus the rearrangement of particle order is not required if we do the communication in multiple steps. 
Further, this protocol does not require any classical communication for the decoding operation. Consequently, it is a QSDC 
protocol. Its qubit efficiency will be naturally higher than the previous protocol. This is so because here Alice does not need 
to disclose the actual sequence and consequently the amount of classical communication required for decoding of the message 
is reduced. But this increase in qubit efhciency is associated with a cost. This QSDC protocol will be slower compared to its 
DSQC counterpart as Alice has to communicate in multiple steps and has to check eavesdropping in each of the steps. 

3 Generalization to orthogonal state based protocols 

The security of the above protocols arises from the non-commutativity of the coding bases used in conjugate coding. However, GV 
protocol employs orthogonal code states, and does not require conjugate coding. In this section we will present a modified protocol 
that is independent of conjugate coding. Or in other words we will represent a GV type DSQC protocol using arbitrary states. 
In a completely orthogonal state based protocol like GV protocol both error checking and encoding are done by using orthogonal 
states. The DSQC and QSDC protocols presented above already employ orthogonal encoding; however, error checking is done 
by a BB84 subroutine, which uses non-orthogonal states (in fact, MUBs). To turn the proposed DSQC and QSDC protocols 
into corresponding GV-class protocols, which we call DSQC*^^ and QSDC'^^, respectively, the error-checking in them also must 
employ only measurement in a single basis. In the following we will propose a new trick, which will allow us to implement the 
error checking using the Bell basis (alternatively by any other maximally entangled basis). 

Intuitively, security in both the single-particle and multi-particle case arises because of no-cloning and the fact that Eve 
cannot access the full state at any given time. In Ref. [20], we pointed out that whereas quantum duality j26| is the fundamental 
origin of security in the GV protocol, monogamy of entanglement |27j turns out to be that of security in the multi-particle GV 
protocols obtained by us, suggesting, as a matter of considerable foundational significance, that duality and monogamy are two 
sides so of the same coin, a point to which we return later |28| . 

This unification is practically applied in the protocols presented in this section, which arises fundamentally from the obser- 
vation that the security of the protocols we suggested above does not depend on whether the basis states \aj) are single-particle 
or multi-particle states, as noted earlier. If \aj) are taken as single-particle states, we obtain a higher dimensional equivalent of 
the GV protocol. 

3.1 Turning DSQC to DSQC^^ 

As the encoding in the DSQC protocol is already done with the orthogonal states, so we retain the encoding steps (DSQCl and 
DSQC2) and the decoding steps (DSQC5 and DSQC6) of the DSQC and modify error checking steps DSQC3 and DSQC4 
as follows: 

DSQC'^^S: Using all the qubits of her possession, Alice creates an ordered sequence Pg = [PiiP2;P3iP4i ■ ■ ■ tPnu-ItPnu]- Now 

Alice prepares [^] Bell pairs where \'ip+) = (|00) + |11)). She uses the Nn qubits of \tp+)'^i^'\ as decoy 

qubits and adds them with Pb to yield a larger sequence Pb' ~ [pi,P2,P3,P4, ■ ■ ■ ,PNn-i,PNn, di,d2, d^, d^, • • • , dpfn-i, dNn]- 
Thereafter Alice applies a permutation operator Il2Nn on Pb' to create a random sequence Pb" ~ ^2NnPB' and sends 
that to Bob. The actual order is known to Alice only. 

DSQC'^^4: After receiving Bob's authenticated acknowledgment of receipt of all the qubits, Alice announces Iljvn G Il2Ar,i, the 
coordinates of the decoy qubits (Bell states). Bob measures the decoy qubits using Bell basis. If sufficiently few errors are 
found, then they go to the next step; else, they return to DSQCl. 

3.2 Turning QSDC to QSDC^^ 

To turn the QSDC into QSDC*^^ we just need to modify QSDC3 as follows (all the other steps will remain same): 

QSDC^^S: Alice prepares n sequences: Pbs = [Ps, Ps+n, ■ • ■ ,Ps+{N-i)n : 1 < s < n]. She also prepares [-^j Bell pairs as in 
DSQC'^^S and inserts the qubits of the Bell pairs randomly into each of the n sequences prepared by her. This creates 
n extended sequences {Pbi+n, Pb2+n, • • • , Pbu+n) each of which contains 2N qubits. Then she sends the first sequence 
Pbi+n to Bob. Receiving Bob's authenticated acknowledgment of receipt of 2A^ qubits, she announces the positions of 
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the decoy qubits in Pbi+n- Bob measures the decoy qubits using Bell basis to check eavesdropping and if sufficiently few 
errors are found then Alice sends Pb2+n to Bob and they check for eavesdropping and the process continues till the error 
free (i.e. within the tolerance limit) transmission of Pbh+n- If at any stage of this step errors more than tolerable rate is 
detected then they truncate the protocol and return to QBDC*-"^! else they go to the next step. 

An interesting feature of these modified GV-type protocol is that the strict time checking required for the original GV protocol 
is not required here. This amplifies the experimental realizability of the proposed orthogonal state based protocols. Further, 
in the original GV protocol strictly one basis set is used for encoding, decoding and eavesdropping checking. Same is true 
for modified version of GV if {|ai)} is Bell basis (or more precisely, if decoy sates are prepared in {|ai)} basis). In all other 
cases encoding and decoding is done with a set of mutually orthogonal states and eavesdropping is checked with another set of 
orthogonal states. Extending this notion if we choose {\bj) ^ \o-n(j))} ^ arbitrary output basis set then in the last step of 
the protocol Bob has to do measurement in this output basis and we would obtain GV-type protocol that uses three different 
sets of orthogonal basis sets. Thus the presented protocols may use two/three different basis sets to implement the protocol but 
they never use non-commutativity of those two/three basis sets to obtain the unconditional security of the protocol. This is so 
because eavesdropping is always checked with a single basis as required in GV type protocol. Origin of security in these protocols 
are explained below. In fact quantum mechanical origin of the security of these protocols distinguishes them from BB84 type of 
protocols. 

4 Efficiency and security of the protocol 

There are two aspects of the security of the DSQC and QSDC protocols: 1) We need to detect every possible attacks of Eve 
and 2) we need to detect Eve before she obtains any meaningful information. The first aspect is common in all secure quantum 
communication protocols (e.g. QKD). Now, since we are inserting adequate number of decoy qubits which are either prepared 
in a random sequence of {|0), |+), | — )} in DSQC and QSDC schemes presented above, the eavesdropping checking process is 
equivalent to BB84 protocol and consequently we can detect all attacks of Eve. Similarly, when we inserts decoy qubits prepared 
in Bell basis then the eavesdropping checking process is equivalent to that in generalised GV protocol [20] . This step is sufficient 
for QKD because if the key is leaked to Eve then the key will not be used for encryption of any information in future but this 
is not sufficient for DSQC or QSDC because here we are directly sending information through the channel and we cannot afford 
to detect Eve after she has already got all the information. 

As the communicated states are orthogonal states in principle Eve can intercept and resend them without being detected but 
the presence of decoy photon will detect Eve's attacks. On the other hand, if Eve attacks all qubits and measures them she will 
only obtain a random sequence of bits. PoP ensures that she will not obtain any meaningful information. Thus our protocol of 
DSQC with arbitrary states is unconditionally secure. 

An important point here is that security is obtained in general by means of information splitting. First when we detect Eve, 
the entire state may be publicly available, but the positions of decoy photons are not announced till Bob receives all the photons. 
Without this information it is impossible for Eve to get the string on which information is encoded without being detected. But 
Eve would not mind being detected after she obtains the information by an intercept-resend attack (substituting dummies in 
place of real particles), because in that case she would have already obtained the encoded message. 

Here PoP plays a crucial role, making the encoded information to be sent in essentially two or more pieces to Bob. Simul- 
taneous non-availability of these information pieces makes it impossible for Eve to get any information. Thus the geographic 
information splitting plays an important role in the security of our protocol. 

More precisely, for a given state let the M split pieces be denoted |a), with a = 1, 2, • • • , A/. Assume that \hj) G 'Hd, the 
d-dimensional Hilbert space of a single particle. Because of information splitting, the most general interaction between Alice's 
transmitted system and some probe with Eve is given by: 



where Ca are operations acting only on the probe, prepared in an initial state lO^;). Intuitively, the more mutually distinguishable 
states = CjlO^;), the greater the entanglement generated between Alice's system and the probe, and thus more mixed is 
the system received by Bob. This is a manifestation of duality, which asserts a trade-off between the 'which-way' information 
Eve is effectively trying to get and the coherence observed by Bob |20]. This disturbance, caused by Eve's restricted power in 
interaction with the communication system, forms the basis of security in GV. A rigorous derivation of duality in the qubit case, 
as applied to the security of GV with qubits, is given by us in Ref. [SD] to be: 



where V and C denote which-way information and coherence, respectively. 

In the multipartite case, a similar result holds, when we interpret \a) in Eq. ^ to range over basis states of individual 
particles. The resulting entanglement with the probe causes a loss of coherence, which can be interpreted along the lines of 
Eq. Q. By virtue of the convexity of entanglement, this implies that the maximum entanglement or quantum correlation that 




(2) 



a 



v + c<i, 



(3) 



.1^ 



the system can form with the rest of the universe is lesser than that which it could form if Eve's attack did not exist. More 
conventionally, as we clarify elsewhere [3S], this can be expressed as the monogamy of entanglement 



E{A : C) + E{B : C) < E{AB : C), (4) 

where E{X : Y) is the square of concurrence, a measure of mixed-state entanglement |27) . 

The security of the extended GV-class protocols thus comes from duality or monogamy, which are understood to be facets 
of the same underlying phenomenon, which we have called monasticism |20l I28j . One reflection of this is that security checking 
requires the use of only a single basis, unlike the case of BB84-class protocols or the original QSDC or DSQC protocols, which 
require two or more mutually unbiased bases. In the original GV protocol, this basis is the |0)±|1) basis, which can be generalized 
to an appropriate 'superposition' basis in the single-particle d-dimensional generalization of GV. In the bipartite generalization 
of GV (both in the QSDC or DSQC cases), this basis is typically that of the Bell states. 

In the existing literature, two analogous but different parameters are used for analysis of efficiency of DSQC and QSDC 
protocols. The first one is simply defined as 

m = I (5) 

where c denotes the total number of transmitted classical bits (message bits) and q denotes the total number of qubits used 
|14i I19| . This simple measure does not include the classical communication that is required for decoding of information in a 
DSQC protocol. Consequently it is a weak measure. 

Another measure }29| that is frequently used and which includes the classical communication is given as 

where h is the number of classical bits exchanged for decoding of the message (classical communication used for checking of 
eavesdropping is not counted). It is straightforward to visualize that ?/i = 772 for all QSDC and QSDC*^^ protocols but ?/i > 772 
for all DSQC protocols. 

Now in the proposed DSQC and DSQC*^^ protocols, n bits of classical information are sent by 71— qubits and equal number 
(i.e. n) of decoy qubits so we have c = n and q ~ 2n. Further to disclose the actual order we need n bits of classical information. 
Thus b = n. Therefore, for DSQC and DSQC*-^^ protocols we have rji = \ and ??2 = 5, and similarly for QSDC and QSDC^^ 
protocol we have 771 = 772 = 5. 

These are the upper bounds on the qubit efficiency of this kind of protocols, as shown in [211 [22]. As the generalized protocols 
proposed here uses arbitrary quantum states to achieve these upper bounds, consequently, we may conclude that the efficiency 
of DSQC and QSDC protocols of present kind is independent of the choice of state. We have already shown that the security of 
the protocol is also independent of the choice of state. Consequently, all set of mutually orthogonal states are equivalent as far 
as secure quantum communication is concerned. There is no advantage of one state over the others and no essential advantage 
arises through new DSQC and QSDC protocols that use complex states like 5-qubit Brown state or 6-qubit cluster state. 



5 Conclusions 

It is shown that the DSQC and QSDC protocols of maximum efficiency can be constructed by using any arbitrary linearly 
independent set of quantum states applicable to single-particle or multi-particle cryptography. Generalized protocols for the 
same are proposed and their efficiency and security are analyzed. It is observed that the proposed protocols are unconditionally 
secure and maximally efhcient for all states. Further, the protocols are generalized to completely orthogonal state based protocols. 
This interesting idea is expected to be of much use in all future experimental developments as it provides a wide choice of states 
to experimentalists. Whereas the security of conventional QSDC and DSQC protocols, like that of BB84-class QKD protocols, 
is based on quantum non-commutativity, the security of the GV versions of these protocols is based fundamentally on duality 
(in the single-particle case) or monogamy of entanglement (in the multi-particle case) . 
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